Description
Cross-site scripting (XSS) vulnerability in Drupal 8.x before 8.1.10 allows remote attackers to inject arbitrary web script or HTML via vectors involving an HTTP exception.
Remediation
References
Related Vulnerabilities
ownCloud Improper Access Control Vulnerability (CVE-2016-9462)
Moodle Resource Management Errors Vulnerability (CVE-2015-5332)
WordPress 3.8.x Possible SQL Injection Vulnerability (3.8 - 3.8.22)
WordPress Plugin Olevmedia Shortcodes Multiple Cross-Site Scripting Vulnerabilities (1.1.9)
WordPress Plugin Comments-wpDiscuz Cross-Site Scripting (7.3.1)